分享
 
 
 

摘录:cciesecurity辅导教材

王朝other·作者佚名  2008-05-19
窄屏简体版  字體: |||超大  

CCIE Security

Overview

Required Evaluations

Security Qualification Exam

Format

Blueprint

Recommended Reading

Security Lab Exam

Format

IOS Versions

Equipment List

Suggested Training Courses

Recertification

For More Information

Overview

The CCIE Security exam covers IP and IP routing as well as specific security components. It is recommended that you read the section on Preparing for your CCIE Exam before reading this page. You can also find information on test policies in the Policies Section.

Required Evaluations

The two requirements to become a CCIE are a passing grade on the Security qualification exam and a passing grade on the Security lab exam . The qualification exam is a prerequisite for attempting and scheduling the lab exam.

Security Qualification Exam

Format

The two-hour, multiple choice exam is computerized and administered at Cisco authorized testing centers. The exam is closed book and contains 100 questions. No reference materials are allowed in the exam room. Find out more about scheduling your Security Qualification exam (#350-018) and an authorized testing center near you.

Blueprint

Please see the Security Blueprint for details.

Recommended Reading

Cisco Network Security (Cisco Press)

Cisco IOS Dial Solutions (Cisco Press)

Enhanced IP Services for Cisco Networks (Cisco Press)

Cisco Internetwork Troubleshooting (Cisco Press)

Designing Network Security (Cisco Press)

Internetworking Troubleshooting Handbook (Cisco Press)

Top Down Network Design (Cisco Press)

Building Cisco Remote Access Networks (Cisco Press)

MPLS and VPN Architectures (Cisco Press)

IPSec : The New Security Standard for the Internet, Intranets, and Virtual Private Networks (Doraswamy/Harkins, Prentice Hall)

Digital Certificates : Applied Internet Security (Feghhi/Williams, Addison Wesley)

Big Book of IPsec RFCs : Internet Security Architecture (Loshin, Morgan Kaufmann Publishers Inc.)

Internet Security Protocols : Protecting IP Traffic (Black, Prentice Hall)

Firewalls and Internet Security : Repelling the Wily Hacker (Cheswick/Bellovin, Addison-Wesley Professional Computing)

Maximum Security : A Hacker's Guide to Protecting Your Internet Site and Network with CD ROM (Anonymous, Sams)

Inside Internet Security : What Hackers Don't Want You to Know (Crume, Addison-Wesley)

Internet and TCP / IP Network Security : Securing Protocols and Applications (Pabrai/Gurbani, McGraw Hill)

Internet Cryptography (Smith, Addison Wesley)

Network Security: Private Communication in a Public World (Kaufman/Perlman/Spenciner, Prentice Hall)

Applied Cryptography: Protocols, Algorithms, and Source Code in C, 2nd Edition (Schneier, John Wiley & Sons)

Strategies to Protect Against Distributed Denial of Service

Characterizing and Tracing Packet Floods Using Cisco Routers

Defining Strategies to Protect Against UDP Diagnostic Port Denial of Service Attacks

Strategies to Protect Against TCP SYN Denial of Service Attacks

Security Lab Exam

Format

The Security Lab exam physical rack layout is similar to the Routing & Switching exam with the exception of a few equipment additions: the pix and security server. Server applications are listed below. Because this is a CCIE lab, candidates should expect to be tested on core ip routing and switching as well as specific security components. There are no desktop protocols, ie. IPX, DLSW etc. Security topics that may be tested are listed in the Security exam blueprint. Candidates may refer to the Routing & Switching exam blueprint for information for more specifics on IP routing and switching test content.

The CCIE candidate will be presented with a complex design to implement from the physical layer up. Candidates are not required to configure any end-user systems, but are responsible for any device residing in the internetwork, including hubs, etc. Network specifics, point values and testing criteria used to assess correctness of the individual configurations are provided.

Each configuration scenario and problem has pre-assigned point values. The candidate must obtain a minimum mark of 80% to pass. Find out more about scheduling your CCIE lab exam and testing sites near you.

IOS Versions

IOS Features up to and including version 12.0 will be tested on the exam until November 14, 2001. IOS "T" trains will be used to provide security specific IPSEC/IOS Firewall features.

To keep pace with the evolution of new technologies in the industry, all CCIE labs worldwide will change to IOS version 12.1, effective November 15, 2001 . Specific features new to IOS version 12.1 can appear on CCIE lab exams starting on this date.

Equipment List

Candidates make inquiries wanting to know the specific Security Applications or specific Servers. It is important to bear in mind that the Security Lab utilizes various servers based upon the version of exam the candidate encounters. Any device used in the lab, outside of the Cisco Router and Switch types listed below are pre-configured. Although a Security Lab exam may interact with one or more of these applications, every effort is made to keep candidate's focus on the routers and switches not on servers. Candidates should dedicate their study to a knowledge of how Cisco Routers and Switches interact with various servers, and the configuration of those routers and switches. Therefore, please consider the equipment list provided as sufficient for the purposes of lab preparation.

2500 series routers

2600 series routers

3600 series routers

4000 and 4500 series routers

3900 series token ring switches

Catalyst 5000 series switches

PIX - running Pix software version 5.2

Services / Applications

Certificate Authority Support

Cisco Secure Access Control System

Cisco Secure Intrusion Detection System

Suggested Training Courses

Cisco Training Classes are RECOMMENDED, and are NOT REQUIRED for completion of the CCIE Program. For more information on these Cisco training classes and our training partners, go to the Cisco Training page. Here is the list of classes we recommend for the CCIE Security certification:

TRN-MCNS-Managing Cisco Network Security

TRN-CSIDS-Cisco Secure Intrusion Detection System

TRN-CSPFF -Cisco Secure PIX Firewall Fundamentals

TRN-CSVPN-Cisco Secure Virtual Private Network

TRN-CSPFA -Cisco Secure PIX Firewall Advanced

TRN-BCRAN-Building Cisco Remote Access Networks

Recertification

All CCIE professionals are required to recertify. For further information please read the recertification section.

For More Information

If you need more information on the Security exam, or the CCIE program in general, contact the CCIE Program Coordinator for your region:

North and South America: ccie_ucsa@cisco.com

Europe, Middle East and Africa: ccie_emea@cisco.com

Asia and the Pacific Rim: ccie_apt@cisco.com

 
 
 
免责声明:本文为网络用户发布,其观点仅代表作者个人观点,与本站无关,本站仅提供信息存储服务。文中陈述内容未经本站证实,其真实性、完整性、及时性本站不作任何保证或承诺,请读者仅作参考,并请自行核实相关内容。
2023年上半年GDP全球前十五强
 百态   2023-10-24
美众议院议长启动对拜登的弹劾调查
 百态   2023-09-13
上海、济南、武汉等多地出现不明坠落物
 探索   2023-09-06
印度或要将国名改为“巴拉特”
 百态   2023-09-06
男子为女友送行,买票不登机被捕
 百态   2023-08-20
手机地震预警功能怎么开?
 干货   2023-08-06
女子4年卖2套房花700多万做美容:不但没变美脸,面部还出现变形
 百态   2023-08-04
住户一楼被水淹 还冲来8头猪
 百态   2023-07-31
女子体内爬出大量瓜子状活虫
 百态   2023-07-25
地球连续35年收到神秘规律性信号,网友:不要回答!
 探索   2023-07-21
全球镓价格本周大涨27%
 探索   2023-07-09
钱都流向了那些不缺钱的人,苦都留给了能吃苦的人
 探索   2023-07-02
倩女手游刀客魅者强控制(强混乱强眩晕强睡眠)和对应控制抗性的关系
 百态   2020-08-20
美国5月9日最新疫情:美国确诊人数突破131万
 百态   2020-05-09
荷兰政府宣布将集体辞职
 干货   2020-04-30
倩女幽魂手游师徒任务情义春秋猜成语答案逍遥观:鹏程万里
 干货   2019-11-12
倩女幽魂手游师徒任务情义春秋猜成语答案神机营:射石饮羽
 干货   2019-11-12
倩女幽魂手游师徒任务情义春秋猜成语答案昆仑山:拔刀相助
 干货   2019-11-12
倩女幽魂手游师徒任务情义春秋猜成语答案天工阁:鬼斧神工
 干货   2019-11-12
倩女幽魂手游师徒任务情义春秋猜成语答案丝路古道:单枪匹马
 干货   2019-11-12
倩女幽魂手游师徒任务情义春秋猜成语答案镇郊荒野:与虎谋皮
 干货   2019-11-12
倩女幽魂手游师徒任务情义春秋猜成语答案镇郊荒野:李代桃僵
 干货   2019-11-12
倩女幽魂手游师徒任务情义春秋猜成语答案镇郊荒野:指鹿为马
 干货   2019-11-12
倩女幽魂手游师徒任务情义春秋猜成语答案金陵:小鸟依人
 干货   2019-11-12
倩女幽魂手游师徒任务情义春秋猜成语答案金陵:千金买邻
 干货   2019-11-12
 
推荐阅读
 
 
 
>>返回首頁<<
 
靜靜地坐在廢墟上,四周的荒凉一望無際,忽然覺得,淒涼也很美
© 2005- 王朝網路 版權所有